api-ms-win-core-processthreads-l1-1-1.dll

  • File Path: C:\Program Files\Common Files\microsoft shared\ClickToRun\api-ms-win-core-processthreads-l1-1-1.dll
  • Description: ApiSet Stub DLL

Hashes

Type Hash
MD5 247061D7C5542286AEDDADE76897F404
SHA1 7285F85440B6EFF8731943B73502F58AE40E95A2
SHA256 CCB974C24DDFA7446278CA55FC8B236D0605D2CAAF273DB8390D1813FC70CD5B
SHA384 2D5EEF7F3A59A4A7D3679C4AE553ED451C315678110A9846A10E705A61508A63E479382E436914D9838684FA1CC088F2
SHA512 23EF467F6BB336D3E8C38000D30A92DAC68E2662891863475FF18DBDDBBBCE909C12D241B86DBDEA085E7D19C82CD20D80A60FFB2845F6AFEBEDF06507AFE5BC
SSDEEP 384:xDfIeWW2hWMSUA0GftpBjjIjqrlBRAkxh:Ke+VitvRAUh
IMP n/a
PESHA1 DEB173EF3E05787E5A5AE0FD4EBB765F3E232887
PE256 E8460AE17F8377E2EF2D60D7555CFFA9665DD93677FD8678752C2EF7C08DB411

DLL Exports:

Function Name Ordinal Type
IsProcessorFeaturePresent 10 Exported Function
GetThreadTimes 9 Exported Function
GetThreadIdealProcessorEx 8 Exported Function
OpenProcess 11 Exported Function
SetThreadIdealProcessorEx 14 Exported Function
SetThreadContext 13 Exported Function
SetProcessMitigationPolicy 12 Exported Function
GetCurrentProcessorNumberEx 3 Exported Function
GetCurrentProcessorNumber 2 Exported Function
FlushInstructionCache 1 Exported Function
GetCurrentThreadStackLimits 4 Exported Function
GetThreadContext 7 Exported Function
GetProcessMitigationPolicy 6 Exported Function
GetProcessHandleCount 5 Exported Function

Signature

  • Status: Signature verified.
  • Serial: 330000010A2C79AED7797BA6AC00010000010A
  • Thumbprint: 3BDA323E552DB1FDE5F4FBEE75D6D5B2B187EEDC
  • Issuer: CN=Microsoft Code Signing PCA, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
  • Subject: CN=Microsoft Corporation, OU=MOPR, O=Microsoft Corporation, L=Redmond, S=Washington, C=US

File Metadata

  • Original Filename: apisetstub
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 10.0.10240.16384 (th1.150709-1700)
  • Product Version: 10.0.10240.16384
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.
  • Machine Type: 64-bit

File Scan

  • VirusTotal Detections: 0/67
  • VirusTotal Link: https://www.virustotal.com/gui/file/ccb974c24ddfa7446278ca55fc8b236d0605d2caaf273db8390d1813fc70cd5b/detection/

File Similarity (ssdeep match)

File Score
C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\agcp.exe 33
C:\Program Files (x86)\Reference Assemblies\Microsoft\Framework.NETFramework\v4.8\Microsoft.VisualC.dll 35
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x64\Microsoft.Azure.KeyVault.Core.dll 36
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x64\Microsoft.WindowsAzure.Configuration.dll 32
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x86\Microsoft.Azure.KeyVault.Core.dll 36
C:\Program Files (x86)\Windows Kits\10\bin\10.0.19041.0\x86\Microsoft.WindowsAzure.Configuration.dll 32
C:\Program Files\Microsoft Silverlight\5.1.50918.0\agcp.exe 33
C:\WINDOWS\system32\microsoft.windows.softwarelogo.showdesktop.exe 27
C:\Windows\system32\mrt_map.dll 25
C:\Windows\system32\mrt100.dll 30
C:\WINDOWS\system32\TsWpfWrp.exe 30
C:\Windows\system32\TsWpfWrp.exe 29
C:\Windows\SysWOW64\mrt_map.dll 25
C:\Windows\SysWOW64\mrt100.dll 30
C:\WINDOWS\SysWOW64\TsWpfWrp.exe 33
C:\Windows\SysWOW64\TsWpfWrp.exe 35

MIT License. Copyright (c) 2020 Strontic.